Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.702751
Kategorie:Debian Local Security Checks
Titel:Debian Security Advisory DSA 2751-1 (libmodplug - several vulnerabilities)
Zusammenfassung:Several vulnerabilities have been discovered in libmodplug, a library for;mod music based on ModPlug, that might allow arbitrary code execution;when processing specially-crafted ABC files through applications using;the library, such as media players.
Beschreibung:Summary:
Several vulnerabilities have been discovered in libmodplug, a library for
mod music based on ModPlug, that might allow arbitrary code execution
when processing specially-crafted ABC files through applications using
the library, such as media players.

Affected Software/OS:
libmodplug on Debian Linux

Solution:
For the oldstable distribution (squeeze), these problems have been fixed in
version 1:0.8.8.1-1+squeeze2+git20130828.

For the stable distribution (wheezy), these problems have been fixed in
version 1:0.8.8.4-3+deb7u1+git20130828.

For the testing distribution (jessie), these problems will be fixed
soon.

For the unstable distribution (sid), these problems have been fixed in
version 1:0.8.8.4-4.

We recommend that you upgrade your libmodplug packages.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2013-4233
Debian Security Information: DSA-2751 (Google Search)
http://www.debian.org/security/2013/dsa-2751
http://blog.scrt.ch/2013/07/24/vlc-abc-parsing-seems-to-be-a-ctf-challenge/
http://www.openwall.com/lists/oss-security/2013/08/10/3
http://secunia.com/advisories/54388
http://secunia.com/advisories/54695
Common Vulnerability Exposure (CVE) ID: CVE-2013-4234
BugTraq ID: 61714
http://www.securityfocus.com/bid/61714
CopyrightCopyright (C) 2013 Greenbone Networks GmbH http://greenbone.net

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.